Stránka 2 z 2

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 01 úno 2013 23:47
od jani410
aplikoval som skript do combofix

tu je log:

ComboFix 13-02-01.04 - johny 01.02.2013 23:28:08.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1051.18.3071.2088 [GMT 1:00]
Running from: c:\users\johny\Desktop\ComboFix.exe
Command switches used :: c:\users\johny\Desktop\CFScript.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
FILE ::
"c:\windows\system32\drivers\avgtpx86.sys"
"c:\windows\tasks\Adobe Flash Player Updater.job"
"c:\windows\tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3726182656-2076420735-390528189-1000Core.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3726182656-2076420735-390528189-1000UA.job"
"c:\windows\tasks\ROC_JAN2013_TB_rmv.job"
"c:\windows\tasks\SUPERAntiSpyware Scheduled Task aa080bb9-30de-4f38-886f-d5bda75c70d1.job"
"c:\windows\tasks\SUPERAntiSpyware Scheduled Task ef27f5fd-3e3f-424e-b903-13e78dbcfb43.job"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\common files\avg secure search
c:\program files\common files\avg secure search\vToolbarUpdater\14.0.1\ToolbarUpdater.exe
c:\program files\common files\avg secure search\vToolbarUpdater\14.0.1\UpdaterConfig.ini
c:\users\johny\appdata\roaming\{B7EFBC57-6CE9-48E4-B7AB-3EABBF9535E6}
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_AVGTP
-------\Service_avgtp
-------\Service_vToolbarUpdater14.0.1
.
.
((((((((((((((((((((((((( Files Created from 2013-01-01 to 2013-02-01 )))))))))))))))))))))))))))))))
.
.
2013-02-01 22:36 . 2013-02-01 22:36 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{57DB6D02-31C1-4174-B863-F701D5112175}\offreg.dll
2013-02-01 22:36 . 2013-02-01 22:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-01 20:26 . 2012-12-16 14:25 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-02-01 20:26 . 2012-12-16 14:25 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-02-01 19:53 . 2013-02-01 19:54 115 ----a-w- c:\windows\DeleteOnReboot.bat
2013-02-01 19:33 . 2012-11-22 05:04 626688 ----a-w- c:\windows\system32\usp10.dll
2013-02-01 19:32 . 2012-11-23 03:08 2353664 ----a-w- c:\windows\system32\win32k.sys
2013-02-01 19:32 . 2012-11-09 04:56 492032 ----a-w- c:\windows\system32\win32spl.dll
2013-02-01 19:32 . 2012-11-02 04:48 376832 ----a-w- c:\windows\system32\dpnet.dll
2013-02-01 19:31 . 2012-11-02 04:52 1389568 ----a-w- c:\windows\system32\msxml6.dll
2013-02-01 19:31 . 2012-11-09 04:49 2048 ----a-w- c:\windows\system32\tzres.dll
2013-02-01 19:29 . 2012-12-07 03:21 45568 ----a-w- c:\windows\system32\oflc-nz.rs
2013-02-01 19:28 . 2012-11-20 05:10 219136 ----a-w- c:\windows\system32\ncrypt.dll
2013-02-01 19:28 . 2012-09-06 19:18 245616 ----a-w- c:\windows\system32\drivers\volsnap.sys
2013-02-01 17:19 . 2013-02-01 22:38 -------- d-----w- c:\users\johny\AppData\Local\temp
2013-02-01 16:44 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{57DB6D02-31C1-4174-B863-F701D5112175}\mpengine.dll
2013-01-31 22:19 . 2013-01-31 22:19 -------- d-----w- C:\TDSSKiller_Quarantine
2013-01-31 21:43 . 2013-01-31 21:43 -------- d-----w- c:\program files\trend micro
2013-01-31 21:43 . 2013-01-31 21:43 -------- d-----w- C:\rsit
2013-01-29 16:04 . 2013-01-29 16:04 -------- d-----w- c:\users\johny\AppData\Roaming\SUPERAntiSpyware.com
2013-01-29 16:03 . 2013-01-29 16:04 -------- d-----w- c:\program files\SUPERAntiSpyware
2013-01-29 16:03 . 2013-01-29 16:03 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2013-01-29 11:09 . 2013-01-29 11:09 -------- d-----w- c:\program files\CCleaner
2013-01-28 23:35 . 2013-01-12 02:30 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-01-25 14:13 . 2013-01-25 14:13 -------- d-----w- c:\program files\ESET
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-01-31 22:40 . 2010-06-18 08:00 387584 ----a-w- c:\windows\system32\drivers\csc.sys
2013-01-25 23:51 . 2012-11-08 22:40 31576 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-01-10 17:57 . 2012-11-29 15:05 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-01-10 17:57 . 2011-12-04 23:29 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-12-17 00:20 . 2012-12-17 00:20 1581056 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\pl-6abb558852cc7fbf9b33022fe7d68612.dll
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Zero Dark Thirty German BDRip Dual Audio FTW\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Wreck-It Ralph 2012 [Japanese].DVDRip.AC3 DiAMOND\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Warrior (I) Italian [DVDRip] 720p SiC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Warm Bodies English.[DVDRip] (XViD) - HOPE\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Twilight (I) 2008 [English] (DVDRip) (x264) sC0rp\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Transformers Dark of the Moon [English].DVDScr.AC3 - SiC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Total Recall English DVDRip.Dual Audio NYDIC\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Total Recall (German) DVDScr.HOPE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Thor 2011 Eng (DVDRip) x264.WBZ\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\There Will Be Blood 2007 (French) (BDRip) AC3 SPARKS\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Words 2012 (English) DVDRip NeDiVx\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Town Eng DVDRip - WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Town 2010 English [DVDScr].480p INSPiRAL\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Town 2010 [Italian] DVDRip.AC3 - PeeR2Me\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Shining [English] PDVD.[720p] - 3LT0N\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Shining [English] BDRip Dual Audio - INSPiRAL\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Shawshank Redemption [English] DVDRip.[AC3] - SiC\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Pirates! Band of Misfits English BDRip.x264 - NeDiVx\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Perks of Being a Wallflower 2012 English.[DVDRip].[XViD].3LT0N\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Odd Life of Timothy Green English DVDScr Dual Audio FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Mortal Instruments City of Bones English.DVDRip.ART3MiS\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Matrix 1999 (Japanese) DVDRip.[x264] UnKnOwN\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Magic of Belle Isle English [DVDRip].480p - FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Lucky One 2012 [Italian] BDRip.x264 - FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Lucky One 2012 (English) (DVDRip) XViD.DiAMOND\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Lost Coast Tapes 2012 [French].DVDRip.720p - AMIABLE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Lion King Italian.PDVD.480p Feel-Free\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Help 2011 English DVDRip.AC3 BiDA\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Hangover (English) DVDRip.XViD AMIABLE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Grey 2011 Eng.[DVD].[Dual Audio] TARGET\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Green Mile English PDVD 720p Feel-Free\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Green Mile 1999 English DVDRip AC3 - WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Great Gatsby 2013 English DVDRip.[Dual Audio] MAX\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Godfather 1972 English [DVDRip] - 3LT0N\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Girl with the Dragon Tattoo (English) PDVD.[x264] - sC0rp\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Expendables English DVDRip 480p WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Expendables 2010 [Eng].BDRip.[720p].NYDIC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Expendables 2 English [DVDScr].AC3 - Voodoo\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Dark Knight [English].DVDRip.AC3 sC0rp\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Cold Light of Day [English] (DVDRip) - TARGET\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Cabin in the Woods Spanish DVDRip.[Dual Audio] - MAX\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Cabin in the Woods 2011 [English] [DVD].x264 - FTW\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Cabin in the Woods 2011 [English] [DVD].x264 - FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Bourne Legacy 2012 English DVDRip.XViD Feel-Free\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Bourne Legacy 2012 [English].DVD.XViD NYDIC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Big Lebowski French (DVDRip) AC3 FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Amazing Spider-Man English (DVDRip) XViD - 3LT0N\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\The Amazing Spider-Man 2012 French (PDVD) 720p BiDA\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Taken (I) 2008 English (DVDRip) (AC3) ART3MiS\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Stolen 2012 Spanish BDRip 3LT0N\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Step Up Revolution 2012 Spanish.BDRip.XViD.ART3MiS\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Step Up Revolution (English) DVDRip.[Dual Audio] - DiAMOND\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Stealing Las Vegas 2012 (English) DVDRip [XViD] UnKnOwN\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Spring Breakers Eng DVD.[x264] - AMIABLE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Spring Breakers 2012 Eng.[PDVD].[x264].PADDO\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Snow White and the Huntsman 2012 (English) [DVDRip].[x264] WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Snatch 2000 English BDRip (AC3) HOPE\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Snatch 2000 English BDRip (AC3) HOPE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Snatch 2000 [English] (DVDRip) 720p.SiC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Skyfall 2012 Italian [DVDScr].AC3 BiDA\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Sinister 2012 German DVDRip x264 - BHRG\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Sinister 2012 Eng DVD (Dual Audio) - PADDO\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Sinister 2012 [English] DVDRip.[x264] FTW\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Silver Linings Playbook [Eng] DVDRip - MAX\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Shame Eng [DVDScr].Dual Audio UnKnOwN\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Shame Eng [DVDScr].Dual Audio UnKnOwN\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Shame 2011 Spanish.PDVD.AC3.SPARKS\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Seven Psychopaths English.[DVDRip].720p ETRG\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Se7en 1995 English DVD (AC3) Voodoo\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Savages English (DVDScr) Dual Audio.NeDiVx\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Savages 2012 English.DVDRip.XViD.SiC\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Savages [Spanish] (DVDScr) 480p - INFERNO\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Safe House English (DVDRip) - sC0rp\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Safe (I) 2012 English DVDScr.x264 3LT0N\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Resident Evil Retribution English.DVDScr UnKnOwN\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Remember the Titans 2000 English.DVD.AC3 DiAMOND\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Remember the Titans 2000 English.DVD.AC3 DiAMOND\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Red Dawn 2012 English (DVDRip) XViD - BiDA\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Red Dawn [Italian].PDVD.[Dual Audio].Feel-Free\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Quantum of Solace Spanish.DVDRip.XViD Feel-Free\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Quantum of Solace Spanish.DVDRip.XViD Feel-Free\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Pulp Fiction 1994 (English) BDRip.480p.AMIABLE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Prometheus (I) 2012 Japanese.DVDRip.XViD.sC0rp\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Pride\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Premium Rush 2012 English.DVDRip.[720p].WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Pitch Perfect German BDRip Dual Audio - AMIABLE\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Pitch Perfect 2012 (French) BDRip.x264 NeDiVx\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\People Like Us English (BDRip) (720p) - MAX\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Peace, Love,\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\ParaNorman English DVDRip WBZ\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\On the Road Italian DVDRip.Dual Audio FTW\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\No Country for Old Men 2007 Japanese DVDRip.[480p] - BiDA\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Movie 43 2013 French.DVDRip.[XViD] TARGET\Mega Codec Pack 9.6.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Movie 43 2013 French.DVDRip.[XViD] TARGET\Mega Codec Pack 9.4.exe
2012-12-09 23:42 . 2012-12-17 11:48 7465509 ----a-w- c:\programdata\Microsoft\Media Tools\plugins\mediahash\downloads\Moonrise Kingdom 2012 German DVDScr XViD DiAMOND\Mega Codec Pack 9.4.exe
2013-01-20 19:06 . 2011-10-08 23:47 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{389943B0-C3A2-4E69-82CB-8596A84CB3DC}]
2012-10-02 10:43 510144 ----a-w- c:\program files\SearchPredict\SearchPredict.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{92A9ACF4-9333-43AE-9698-DB283326F87F}]
2012-11-19 23:36 2660016 ----a-w- c:\program files\SPEEDbit Video Downloader\Toolbar\tbcore3.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\0MediaIconsOerlay]
@="{1EC23CFF-4C58-458f-924C-8519AEF61B32}"
[HKEY_CLASSES_ROOT\CLSID\{1EC23CFF-4C58-458f-924C-8519AEF61B32}]
2012-11-06 17:32 220160 ----a-w- c:\program files\Mega Codec Pack\Filters\Haali\mmdinfo.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-06-18 1173504]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-26 5074384]
.
c:\users\johny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Google Update"="c:\users\johny\AppData\Local\Google\Update\GoogleUpdate.exe" /c
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"HP Software Update"=c:\program files\HP\HP Software Update\HPWuSchd2.exe
.
R3 DynCal;Dynamic Calibration Service;c:\windows\system32\drivers\Dyncal.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [x]
R3 netr28;Ralink 802.11n Wireless Driver for Windows Vista;c:\windows\system32\DRIVERS\netr28.sys [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 Angelnt;Angelnt;c:\windows\System32\Drivers\ANGELNT.SYS [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [x]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSGB6.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Contents of the 'Scheduled Tasks' folder
.
2013-02-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-29 17:57]
.
2013-02-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-06-13 21:48]
.
2013-02-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-06-13 21:48]
.
2013-02-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3726182656-2076420735-390528189-1000Core.job
- c:\users\johny\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 23:22]
.
2013-02-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3726182656-2076420735-390528189-1000UA.job
- c:\users\johny\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 23:22]
.
2013-02-01 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task aa080bb9-30de-4f38-886f-d5bda75c70d1.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2011-05-04 17:52]
.
2013-02-01 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task ef27f5fd-3e3f-424e-b903-13e78dbcfb43.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2011-05-04 17:52]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://home.speedbit.com/?pid=%s&aid=%s
uInternet Settings,ProxyServer = proxy.euba:8080
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 193.87.16.23 193.87.16.8
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\54552414D275966696D21307: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\54552414D275966696D22307: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\54552414D275966696D25307: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\54552414D275966696D26307: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\76572757: NameServer = 156.154.70.22,156.154.71.22
TCP: Interfaces\{4A90B40D-BDA4-42DB-9C32-43776342353B}\D4164766961636B616: NameServer = 156.154.70.22,156.154.71.22
FF - ProfilePath - c:\users\johny\AppData\Roaming\Mozilla\Firefox\Profiles\8m1n5ob1.default\
FF - ExtSQL: !HIDDEN! 2012-02-03 18:28; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\atieclxx.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\progra~1\COMMON~1\SpeedBit\SBUpdate\SBUpdate.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Completion time: 2013-02-01 23:42:27 - machine was rebooted
ComboFix-quarantined-files.txt 2013-02-01 22:42
ComboFix2.txt 2013-02-01 17:27
.
Pre-Run: 53 110 362 112 bytes free
Post-Run: 52 913 762 304 bytes free
.
- - End Of File - - 041BCD94F514A5304404F6310720AD98

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 01 úno 2013 23:56
od vyosek
Fajn, jak se chova PC :???:

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 02 úno 2013 00:04
od jani410
Je to dobre, pracuje bez problémov, celkom rýchlo oproti predošlemu stavu :).

je to super, fakt Dakujem

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 02 úno 2013 00:14
od vyosek
Tak jeste uklidime :James008:

:arrow: Odinstalujte Combofix
  • Prejmenujte ComboFix na Uninstall
  • Spustte jej
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel èistiè
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 02 úno 2013 00:51
od jani410
spravil som všetky čistenia, všetko prebehlo v poriadku.

Ešte raz dakujem za pomoc na vysoko profesionálnej úrovni.

Dakujem

Re: Win32/sirefef.ez v operacnej pamati

Napsal: 02 úno 2013 00:52
od vyosek
Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock: